1 heat_template_version: pike
4 OpenStack containerized swift proxy service
9 default: 'tripleoupstream'
11 DockerSwiftProxyImage:
13 default: 'centos-binary-swift-proxy-server:latest'
15 DockerSwiftConfigImage:
16 description: The container image to use for the swift config_volume
17 default: 'centos-binary-swift-proxy-server:latest'
21 description: Mapping of service endpoint -> protocol. Typically set
22 via parameter_defaults in the resource registry.
26 description: Mapping of service_name -> network name. Typically set
27 via parameter_defaults in the resource registry. This
28 mapping overrides those in ServiceNetMapDefaults.
35 description: Role name on which the service is applied
39 description: Parameters specific to the role
47 internal_tls_enabled: {equals: [{get_param: EnableInternalTLS}, true]}
52 type: ./containers-common.yaml
55 type: ../../puppet/services/swift-proxy.yaml
57 EndpointMap: {get_param: EndpointMap}
58 ServiceNetMap: {get_param: ServiceNetMap}
59 DefaultPasswords: {get_param: DefaultPasswords}
60 RoleName: {get_param: RoleName}
61 RoleParameters: {get_param: RoleParameters}
65 description: Role data for the swift proxy.
67 service_name: {get_attr: [SwiftProxyBase, role_data, service_name]}
68 config_settings: {get_attr: [SwiftProxyBase, role_data, config_settings]}
69 step_config: &step_config
70 get_attr: [SwiftProxyBase, role_data, step_config]
71 service_config_settings: {get_attr: [SwiftProxyBase, role_data, service_config_settings]}
72 # BEGIN DOCKER SETTINGS
75 puppet_tags: swift_proxy_config
76 step_config: *step_config
80 - [ {get_param: DockerNamespace}, {get_param: DockerSwiftConfigImage} ]
82 /var/lib/kolla/config_files/swift_proxy.json:
83 command: /usr/bin/swift-proxy-server /etc/swift/proxy-server.conf
85 - path: /var/log/swift
88 /var/lib/kolla/config_files/swift_proxy_tls_proxy.json:
89 command: /usr/sbin/httpd -DFOREGROUND
94 image: &swift_proxy_image
97 - [ {get_param: DockerNamespace}, {get_param: DockerSwiftProxyImage} ]
103 - {get_attr: [ContainersCommon, volumes]}
105 - /var/lib/kolla/config_files/swift_proxy.json:/var/lib/kolla/config_files/config.json:ro
106 # FIXME I'm mounting /etc/swift as rw. Are the rings written to
107 # at all during runtime?
108 - /var/lib/config-data/swift/etc/swift:/etc/swift:rw
110 - /srv/node:/srv/node
112 - /var/log/containers/swift:/var/log/swift
114 - KOLLA_CONFIG_STRATEGY=COPY_ALWAYS
116 - internal_tls_enabled
117 - swift_proxy_tls_proxy:
118 image: *swift_proxy_image
124 - {get_attr: [ContainersCommon, volumes]}
126 - /var/lib/kolla/config_files/swift_proxy_tls_proxy.json:/var/lib/kolla/config_files/config.json:ro
127 - /var/lib/config-data/swift/etc/httpd/conf/:/etc/httpd/conf/:ro
128 - /var/lib/config-data/swift/etc/httpd/conf.d/:/etc/httpd/conf.d/:ro
129 - /var/lib/config-data/swift/etc/httpd/conf.modules.d/:/etc/httpd/conf.modules.d/:ro
130 - /etc/pki/tls/certs/httpd:/etc/pki/tls/certs/httpd:ro
131 - /etc/pki/tls/private/httpd:/etc/pki/tls/private/httpd:ro
133 - KOLLA_CONFIG_STRATEGY=COPY_ALWAYS
136 - name: create persistent directories
141 - /var/log/containers/swift
144 - name: Stop and disable swift_proxy service
146 service: name=openstack-swift-proxy state=stopped enabled=no
148 get_attr: [SwiftProxyBase, role_data, metadata_settings]